From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from mailman by lists.gnu.org with tmda-scanned (Exim 4.43) id 1LUrzn-00077B-NB for qemu-devel@nongnu.org; Wed, 04 Feb 2009 19:21:32 -0500 Received: from exim by lists.gnu.org with spam-scanned (Exim 4.43) id 1LUrzd-0006ze-9U for qemu-devel@nongnu.org; Wed, 04 Feb 2009 19:21:27 -0500 Received: from [199.232.76.173] (port=55301 helo=monty-python.gnu.org) by lists.gnu.org with esmtp (Exim 4.43) id 1LUrza-0006yz-Jy for qemu-devel@nongnu.org; Wed, 04 Feb 2009 19:21:18 -0500 Received: from g5t0009.atlanta.hp.com ([15.192.0.46]:17690) by monty-python.gnu.org with esmtps (TLS-1.0:DHE_RSA_AES_256_CBC_SHA1:32) (Exim 4.60) (envelope-from ) id 1LUrzZ-0001gB-S6 for qemu-devel@nongnu.org; Wed, 04 Feb 2009 19:21:18 -0500 From: Alex Williamson Date: Wed, 04 Feb 2009 17:18:22 -0700 Message-ID: <20090205001822.27879.89787.stgit@kvm.aw> In-Reply-To: <20090205001707.27879.22745.stgit@kvm.aw> References: <20090205001707.27879.22745.stgit@kvm.aw> MIME-Version: 1.0 Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: 7bit Subject: [Qemu-devel] [PATCH v3 6/8] qemu:virtio-net: Enable filtering based on MAC, promisc, broadcast and allmulti Reply-To: qemu-devel@nongnu.org List-Id: qemu-devel.nongnu.org List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , To: anthony@codemonkey.ws, qemu-devel@nongnu.org Cc: markmc@redhat.com, alex.williamson@hp.com, kvm@vger.kernel.org Make use of the new RX_MODE control virtqueue class by dropping packets the guest doesn't want to see. Signed-off-by: Alex Williamson --- hw/virtio-net.c | 28 ++++++++++++++++++++++++++++ 1 files changed, 28 insertions(+), 0 deletions(-) diff --git a/hw/virtio-net.c b/hw/virtio-net.c index 7e130f7..001169d 100644 --- a/hw/virtio-net.c +++ b/hw/virtio-net.c @@ -222,6 +222,31 @@ static int receive_header(VirtIONet *n, struct iovec *iov, int iovcnt, return offset; } +static int receive_filter(VirtIONet *n, const uint8_t *buf, int size) +{ + static const uint8_t bcast[] = {0xff, 0xff, 0xff, 0xff, 0xff, 0xff}; + uint8_t *ptr = (uint8_t *)buf; + + if (n->promisc) + return 1; + +#ifdef TAP_VNET_HDR + if (tap_has_vnet_hdr(n->vc->vlan->first_client)) + ptr += sizeof(struct virtio_net_hdr); +#endif + + if ((ptr[0] & 1) && n->allmulti) + return 1; + + if (!memcmp(ptr, bcast, sizeof(bcast))) + return 1; + + if (!memcmp(ptr, n->mac, ETH_ALEN)) + return 1; + + return 0; +} + static void virtio_net_receive(void *opaque, const uint8_t *buf, int size) { VirtIONet *n = opaque; @@ -231,6 +256,9 @@ static void virtio_net_receive(void *opaque, const uint8_t *buf, int size) if (!do_virtio_net_can_receive(n, size)) return; + if (!receive_filter(n, buf, size)) + return; + /* hdr_len refers to the header we supply to the guest */ hdr_len = n->mergeable_rx_bufs ? sizeof(struct virtio_net_hdr_mrg_rxbuf) : sizeof(struct virtio_net_hdr);